The Register

Subscribe to The Register feed
Biting the hand that feeds IT — Enterprise Technology News and Analysis
Updated: 54 min 56 sec ago

Shai-Hulud worm returns, belches secrets to 25K GitHub repos

Mon, 24/11/2025 - 14:08
Trojanized npm packages spread new variant that executes in pre-install phase, hitting thousands within days

A self-propagating malware targeting node package managers (npm) is back for a second round, according to Wiz researchers who say that more than 25,000 developers had their secrets compromised within three days.…

Categories: News

FCC guts post-Salt Typhoon telco rules despite ongoing espionage risk

Mon, 24/11/2025 - 13:14
Months after China-linked spies burrowed into US networks, regulator tears up its own response

The Federal Communications Commission (FCC) has scrapped a set of telecom cybersecurity rules introduced after the Salt Typhoon espionage campaign, reversing course on measures designed to stop state-backed snoops from slipping back into America's networks.…

Categories: News

CISA orders feds to patch Oracle Identity Manager zero-day after signs of abuse

Mon, 24/11/2025 - 11:45
Agencies have until December 12 to mitigate flaw that was likely exploited before Big Red released fix

CISA has ordered US federal agencies to patch against an actively exploited Oracle Identity Manager (OIM) flaw within three weeks – a scramble made more urgent by evidence that attackers may have been abusing the bug months before a fix was released.…

Categories: News

Championing cyber security: the national UK cyber team's journey at the European Cyber Security Challenge

Mon, 24/11/2025 - 09:00
Reflections on coaching, collaboration, and the pursuit of excellence in cyber security

Partner Content  From 6th to 10th October 2025, ten exceptional cyber enthusiasts proudly flew the flag for the United Kingdom in the European Cyber Security Challenge (ECSC), held this year in the vibrant setting of Poland.…

Categories: News

Cryptology boffins’ association to re-run election after losing encryption key needed to count votes

Mon, 24/11/2025 - 05:43
The shoemaker’s children have new friends

The International Association for Cryptologic Research will run a second election for new board members and other officers, after it was unable to complete its first poll due to a lost encryption key.…

Categories: News

70-hour work weeks no longer enough for Infosys founder, who praises China’s 996 culture

Mon, 24/11/2025 - 01:16
PLUS: Manga publishers win Cloudflare copyright case; India, EU to link payment systems; Storm over Australia’s weather website; And more!

Asia In Brief  Infosys co-founder Narayana Murthy has suggested Indian citizens should work even longer, suggesting his previous target of 70-hour weeks could climb to 72.…

Categories: News

Weaponized file name flaw makes updating glob an urgent job

Sun, 23/11/2025 - 22:46
PLUS: CISA issues drone warning; China-linked DNS-hijacking malware; Prison for BTC Samourai; And more

Infosec In Brief  Researchers have urged users of the glob file pattern matching library to update their installations, after discovery of a years-old remote code execution flaw in the tool's CLI.…

Categories: News

ShinyHunters 'does not like Salesforce at all,' claims the crew accessed Gainsight 3 months ago

Fri, 21/11/2025 - 19:25
'I have compromised other known OAuth apps,' Shiny tells The Reg

EXCLUSIVE  ShinyHunters has claimed responsibility for the Gainsight breach that allowed the data thieves to snarf data from hundreds more Salesforce customers.…

Categories: News

Four charged over alleged plot to smuggle Nvidia AI chips into China

Fri, 21/11/2025 - 13:58
Prosecutors say front companies, falsified paperwork, and overseas drop points used to dodge US export rules

Four people have been charged in the US with plotting to funnel restricted Nvidia AI chips into China, allegedly relying on shell firms, fake invoices, and covert routing to slip cutting-edge GPUs past American export controls.…

Categories: News

Russia-linked crooks bought a bank for Christmas to launder cyber loot

Fri, 21/11/2025 - 13:15
UK cops trace street-level crime to sanctions-busting networks tied to Moscow's war economy

On Christmas Day 2024, a Russian-linked laundering network bought itself a very special present: a controlling stake in a Kyrgyzstan bank, later used to wash cybercrime profits and funnel money into Moscow's war machine, according to the UK's National Crime Agency (NCA).…

Categories: News

ZTE Launches ZXCSec MAF security solution for large model

Fri, 21/11/2025 - 09:19
A multi-layered security framework protecting large-model applications from adversarial threats, data leakage, API abuse, and content risks

Partner Content  At MWC Shanghai 2025, ZTE has officially launched its ZXCSec MAF product, a dedicated application-layer security protection device specifically designed for large model services.…

Categories: News

Google links Android’s Quick Share to Apple’s AirDrop, without Cupertino’s help

Fri, 21/11/2025 - 03:55
Relies on very loose permissions, but don’t worry – Google wrote it in Rust

Google has linked Android’s wireless peer-to-peer file sharing tool Quick Share to Apple’s equivalent AirDrop.…

Categories: News

SEC drops SolarWinds lawsuit that painted a target on CISOs everywhere

Thu, 20/11/2025 - 23:20
Company 'clearly delighted' with the outcome

The US Securities and Exchange Commission (SEC) has abandoned the lawsuit it pursued against SolarWinds and its chief infosec officer for misleading investors about security practices that led to the 2020 SUNBURST attack.…

Categories: News

Salesforce-linked data breach claims 200+ victims, has ShinyHunters’ fingerprints all over it

Thu, 20/11/2025 - 20:30
They keep coming back for more

Salesforce has disclosed another third-party breach in which criminals - likely ShinyHunters (again) - may have accessed hundreds of its customers' data.…

Categories: News

LLM-generated malware is improving, but don't expect autonomous attacks tomorrow

Thu, 20/11/2025 - 19:12
Researchers tried to get ChatGPT to do evil, but it didn't do a good job

LLMs are getting better at writing malware - but they're still not ready for prime time.…

Categories: News

Fired techie admits sabotaging ex-employer, causing $862K in damage

Thu, 20/11/2025 - 16:44
PowerShell script locked thousands of workers out of their accounts

An Ohio IT contractor has pleaded guilty to breaking into his former employer's systems and causing nearly $1 million worth of damage after being fired.…

Categories: News

TP-Link accuses rival Netgear of 'smear campaign' over alleged China ties

Thu, 20/11/2025 - 16:03
Networking vendor claims rival helped portray it as a national-security risk in the US

TP-Link is suing rival networking vendor Netgear, alleging that the rival and its CEO carried out a smear campaign by falsely suggesting, it says, that the biz had been infiltrated by the Chinese government.…

Categories: News

Education boards left gates wide open for PowerSchool mega-breach, say watchdogs

Thu, 20/11/2025 - 14:46
Privacy cops say attack wasn't just bad luck but a result of sloppy homework

Canadian privacy watchdogs say that school boards must shoulder part of the blame for the PowerSchool mega-breach, not just the ed-tech giant that lost control of millions of student and staff records.…

Categories: News

Palo Alto kit sees massive surge in malicious activity amid mystery traffic flood

Thu, 20/11/2025 - 11:38
GlobalProtect login endpoints targeted, sparking concern that something bigger may be brewing

Malicious traffic targeting Palo Alto Networks' GlobalProtect portals surged almost 40-fold in the space of 24 hours, hitting a 90-day high and putting defenders on alert for whatever comes next.…

Categories: News

Palo Alto CEO tips nation-states to weaponize quantum computing by 2029

Thu, 20/11/2025 - 04:27
Company thinks you’ll contemplate replacing most security kit in the next few years to stay safe

Palo Alto Networks CEO Nikesh Arora has suggested hostile nation-states will possess quantum computers in 2029, or even a little earlier, at which point most security appliances will need to be replaced.…

Categories: News

Pages